CVE-2017-18323: Medium severity android vulnerability
Cryptographic key material leaked in TDSCDMA RRC debug messages in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9615, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SDA660, SDX20, SXR1130.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-18323?
CVE-2017-18323 is a vulnerability that allows cryptographic key material to be leaked in TDSCDMA RRC debug messages in Snapdragon automobile, Snapdragon mobile, and Snapdragon wear devices.
How severe is CVE-2017-18323?
CVE-2017-18323 has a severity rating of 5.5, which is considered high.
Which software versions are affected by CVE-2017-18323?
CVE-2017-18323 affects versions MDM9206, MDM9607, MDM9615, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16.
How can I fix CVE-2017-18323?
To fix CVE-2017-18323, it is recommended to apply the security patches provided by the vendor.
Where can I find more information about CVE-2017-18323?
You can find more information about CVE-2017-18323 in the official Android security bulletin for December 2018.